Vulnerability Name: | CVE-2012-4167 (CCN-77910) | ||||||||||||||||||||||||
Assigned: | 2012-08-21 | ||||||||||||||||||||||||
Published: | 2012-08-21 | ||||||||||||||||||||||||
Updated: | 2018-12-04 | ||||||||||||||||||||||||
Summary: | Integer overflow in Adobe Flash Player before 10.3.183.23 and 11.x before 11.4.402.265 on Windows and Mac OS X, before 10.3.183.23 and 11.x before 11.2.202.238 on Linux, before 11.1.111.16 on Android 2.x and 3.x, and before 11.1.115.17 on Android 4.x; Adobe AIR before 3.4.0.2540; and Adobe AIR SDK before 3.4.0.2540 allows attackers to execute arbitrary code via unspecified vectors. | ||||||||||||||||||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||||||||||||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
5.0 Medium (REDHAT Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||
Vulnerability Type: | CWE-189 | ||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||
References: | Source: CCN Type: BSRT-2013-002 Vulnerability in Samba service impacts BlackBerry PlayBook tablet file sharing Source: MITRE Type: CNA CVE-2012-4167 Source: CCN Type: Google Chrome Releases Stable Channel Update Source: HP Type: Mailing List, Third Party Advisory HPSBMU02948 Source: CCN Type: RHSA-2012-1173 Critical: flash-plugin security update Source: CCN Type: RHSA-2012-1203 Critical: flash-plugin security update Source: REDHAT Type: Third Party Advisory RHSA-2012:1203 Source: CCN Type: SA50354 Adobe Flash Player Multiple Vulnerabilities Source: CCN Type: SA50356 Google Chrome Adobe Flash Player Vulnerabilities Source: CCN Type: SA51830 BlackBerry Tablet OS Adobe Flash Player and Samba Multiple Vulnerabilities Source: GENTOO Type: Third Party Advisory GLSA-201209-01 Source: CCN Type: Adobe Product Security Bulletin APSB12-19 Security updates available for Adobe Flash Player Source: CONFIRM Type: Patch, Vendor Advisory http://www.adobe.com/support/security/bulletins/apsb12-19.html Source: CCN Type: BSRT-2013-001 Vulnerabilities in Adobe Flash Player version included with the BlackBerry PlayBook tablet software Source: CCN Type: BID-56192 Adobe Flash Player and AIR CVE-2012-4167 Remote Integer Overflow Vulnerability Source: XF Type: UNKNOWN adobe-unspec-overflow(77910) | ||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration 3: Configuration 4: Configuration 5: Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||
| |||||||||||||||||||||||||
BACK |